GitHub investigates attack via malicious VS Code extension

TL;DR AI
2 min readKey summary
GitHub is investigating unauthorized access to its internal repositories, likely triggered by a poisoned Visual Studio Code extension.
The company says there is no evidence customer data or private repositories were affected, and it is reviewing logs and rotating credentials.
Reports claim attackers may have accessed thousands of repositories and could be tied to the Shai-Hulud malware campaign, but that has not been confirmed.
The incident raises concerns about supply-chain security, exposed code and credentials, and the risk of follow-on attacks.



